Security Advisory

CVE-2019-6852

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2019-11-20 22:01:49
Last updated 2026-05-28 19:39:27
Assigner schneider
CVSS score not scored
State PUBLISHED

Description

A CWE-200: Information Exposure vulnerability exists in Modicon Controllers (M340 CPUs, M340 communication modules, Premium CPUs, Premium communication modules, Quantum CPUs, Quantum communication modules - see security notification for specific versions), which could cause the disclosure of FTP hardcoded credentials when using the Web server of the controller on an unsecure network.